QID 150517
Date Published: 2022-05-23
QID 150517: dotCMS Remote Code Execution Vulnerability (CVE-2022-26352)
dotCMS is an open source content management system written in Java for managing content and content driven sites and applications.
On affected versions of dotCMS, a pre-auth remote code execution vulnerability was found which was achievable by performing a directory traversal attack during file upload.
Affected versions:
dotCMS versions: 22.01 and below
QID Detection Logic (Unauthenticated):
This QID sends a HTTP GET request to "/api/v1/appconfiguration" endpoint and checks the response body to confirm if the host is running vulnerable version of dotCMS Server.
An attacker can upload arbitrary files to the system. By uploading a JSP file to the tomcats root directory, it is possible to achieve code execution, leading to command execution. An attacker can ultimately execute arbitrary commands on the underlying system.
If upgrading is not possible, please refer to mitigation details mentioned on dotCMS Issue SI-62
- SI-62 -
www.dotcms.com/security/SI-62
CVEs related to QID 150517
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SI-62 |
|